CVE-2012-4092: Cisco Unified Computing System

Medium severity, CVSS 5.8. EPSS: 0.8% chance of exploitation in the next 30 days.

The management interface in the Central Software component in Cisco Unified Computing System (UCS) does not properly validate the identity of vCenter consoles, which allows man-in-the-middle attackers to read or modify an inter-device data stream by spoofing an identity, aka Bug ID CSCtk00683.

Affected products

  • Cisco Unified Computing System: affected versions not specified

Published 2013-09-26. Last modified 2026-06-16.